Jobs and Careers
ES

System Security Officer

eSimplicity
United Statesfull_timeVerifiedPosted 8 Jul 2025
💰 $146,000/yr($112,800/yr$146,000/yr)

About the role

Description

About Us 

eSimplicity is a modern digital services company that works across government, partnering with our clients to improve the health and lives of millions of Americans, ensure the security of all Americans—from soldiers and veterans to kids and the elderly, and defend national interests on the battlefield. Our engineers, designers, and strategists cut through complexity to create intuitive products and services that courageously equip Federal agencies with solutions to transform today for a better tomorrow for all Americans. 


Purpose of Scope: 

We’re seeking a Hybrid - System Security Officer (SO) with strong service delivery acumen and deep technical security engineering expertise that demonstrates keen leadership abilities and is responsible for serving as a key technical contributor that provides security support services while meeting security compliance requirements for a portfolio of systems at various states of maturity and modernization. This role will provide support for continuously monitoring the cybersecurity posture of systems to secure against cyber threats. The SO’s primary responsibility is to ensure adherence to all applicable federal IT security and privacy standards, policies, statutes, and reporting requirements, as well as all National Institute of Standards and Technology (NIST) standards and guidelines, and other Government-wide laws and regulations for the protection and security of Government Information by facilitating security tool implementation, security tool usage, ensuring tools remain compliant and configured properly, all the while ensuring a successful program Authorization to Operate (ATO).  

To fulfill its primary responsibilities the SO will provide subject matter expertise throughout all phases of the Software Development Life Cycle (SDLC) and is expected to share ownership in delivering security services through active participation in the Scaled Agile Framework (SAFe) for promoting a proactive approach to embedding security architecture and engineering priorities and considerations throughout the SDLC process resulting in improved Risk Management, enhanced collaboration, communication, visualization and coordination among cross-functional agile teams and stakeholders. The SO role owns coordination and response to agency security related inquiries, compliance with security controls, maintenance of security documentation and artifacts.  The SO will act as the primary liaison to provide timely and accurate responses to security related data calls (System Security & Compliance Status, Vulnerability and Compliance scanning issues) and annual security assessments.  The SO will interface with multiple stakeholders through multiple touchpoints weekly.  


Responsibilities:  

  • Provide security oversight for user provisioning, role-based access control (RBAC), least privilege enforcement, and access auditing. 
  • Perform periodic user and privileged access reviews. 
  • Establish, lead and facilitate all aspects of onboarding/offboarding personnel to include granting and revoking system access. 
  • Lead and participate in triggered contingency planning events, incident response investigations, reporting, and lessons learned processes. 
  • Lead, develop and conduct annual Contingency Plan and Incident Response Plan Test and Training exercises. 
  • Work closely with the Product Owners, agency ISSOs, engineering and infrastructure staff to provide guidance on implementation if security policies, standards, and procedures 
  • Analyze new or updated security requirements, collaborate with stakeholders, and develop responses that are clear and accurate. 
  • Support the review and update of ATO artifacts such as System Security & Privacy Plans, Security Boundary Diagrams, Information System Contingency Plans, Configuration and Change Management Plans, Incident Response Plans, Security Impact Analysis (SIA), Privacy Impact Analysis (PIA), and more. 
  • Interpret security risk assessment and security scan results, assess security vulnerabilities and support the remediation of vulnerabilities and compliance issues via Plan of Action and Milestones (POA&Ms). 
  • Support the design, development and implementation relating to security features. 
  • Work with engineering and infrastructure personnel in support of system development, and remediation of vulnerabilities and non-compliance issues. 
  • Analyze and interpret agency security requirements and provide governance communication to non-security personnel. 
  • Collaborate with product teams, ISSOs and other stakeholders in support of continuous monitoring and ATO efforts. 
  • Conduct vulnerability assessments and monitor systems, networks, databases and Web-based assets for potential system breaches. Recommend and take

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

eSimplicity

View company profile →